
A group of Russian hackers, who were previously accused of intervention in the presidential election in 2016 in the United States, at the beginning of this year attacked the mailboxes of the Democratic Party in California and Indiana, as well as analytical centers in Washington and New York. It is reported by Reuters with reference to sources familiar with the situation.
According to the interlocutors of the agency, the attack was made by the Fancy Bear group. It is noted that hackers attacked the Council on International Relations, the Center for American Progress, as well as the Carnegie Foundation. According to organizations, hacking attempts were not successful.
Representatives of the Democratic Party of Indiana said they “unknown about any successful invasions”, while the chairman of the California Democratic Party, Hicks, confirmed the fact of the attack, but did not indicate that Fancy Bear was involved in it.
In early September, Microsoft reported that the Fancy Bear group attacked more than 200 organizations. Many of them were associated with the election of the US President 2020.
In 2017, The Insider managed to prove that Fancy Bear consists of employees of the military unit of 26165 GRU. A year later, these data were confirmed by the US Ministry of Justice, officially charging a group of hackers. The most famous operation of APT28 was the hack of the servers of the Democratic Party in 2016, designed to help Donald Trump win Hillary Clinton in the presidential election. Then Trump did not hide that for his political purposes he uses information received from hacking, and urged Russian hackers to post more letters to Hillary Clinton. Among the rest of the APT28 cyber attacks, one can note the White House (and other goals in the USA), the Ministry of Foreign Affairs of the Czech Republic, Poland, Germany, Italy, Latvia, Estonia, Ukraine, Norway, the Netherlands and other countries, the Denmark, Italy and Germany, the Bundestag, NATO, OSCE, MOK, WADA, JIT, a number of foreign media editorials (including TV5MONDE and al-jazira). The same group of hackers attacked dozens of Russian oppositionists and members of NPOs and journalists, including The Insider employees, which was independently confirmed by four companies operating in the field of information security.